cbcvebase.
CVE-2015-2019
published 2015-06-28

CVE-2015-2019: IBM Tivoli Security Directory Server 6.0 before iFix 75, 6.1 before iFix 68, 6.2 before iFix 44, 6.3 before iFix 37, 6.3.1 before iFix 11, and 6.4 before iFix…

low2.1CVSS 3.1
AVLACLAuNCPINAN
IBM Tivoli Security Directory Server 6.0 before iFix 75, 6.1 before iFix 68, 6.2 before iFix 44, 6.3 before iFix 37, 6.3.1 before iFix 11, and 6.4 before iFix 2 does not prevent caching of documents retrieved in SSL sessions, which allows physically proximate attackers to obtain sensitive information by leveraging an unattended workstation.

Affected

8 ranges
VendorProductVersion rangeFixed in
ibmtivoli_directory_server
ibmtivoli_directory_server
ibmtivoli_directory_server
ibmtivoli_directory_server
ibmtivoli_directory_server
ibmtivoli_directory_server
msrcskype_for_business_server_2015_cu13
msrcskype_for_business_server_2019_cu7

CVSS provenance

nvd2.1LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
osv6.8MEDIUM